RECORDS & RESPONSIBILITY
Your clinic’s records.
Clear boundaries.
A practical explanation of how access and sharing work in Aariva. These are product controls, not a claim of regulatory certification.
Each clinic has its own workspace
Your account can belong to more than one clinic. The clinic you open determines the records you can access. Membership and role checks are applied on the server when records are read or changed.
Roles match responsibilities
Owners manage the clinic. Doctors handle clinical work. The Owner & doctor role combines both for practising owners. Reception handles day-to-day administration with specific extra permissions where needed. Finalising a clinical record or releasing a report remains a clinician action.
Patients see what is shared with them
A patient invitation connects a matching verified Google account to that patient’s record. Patients can see their visits, invoices and released documents. Draft clinical notes and unreleased reports are not included. Adding a caregiver contact does not grant chart access.
Documents are private by default
Uploaded clinic files are stored in private object storage. The application checks access before issuing a short-lived link. Releasing a report makes it available to the linked patient; opening it as a staff member does not mark it reviewed.
Clinical history is preserved
A finalised clinical record cannot be silently overwritten. Amendments add a new entry. Key changes, access decisions and invitation actions are recorded in the application audit trail.
Your team has a part to play
Use individual accounts, check invitation addresses and review team access when someone leaves. Confirm that a patient should receive a document before releasing it. Reminder agreement is separate from the account invitation needed to enter the portal.
For data handling details, read our privacy policy. For access questions, use the help center or contact our team.